Name | CVE-2016-7796 |
Description | The manager_dispatch_notify_fd function in systemd allows local users to cause a denial of service (system hang) via a zero-length message received over a notify socket, which causes an error to be returned and the notification handler to be disabled. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DLA-659-1 |
Debian Bugs | 839607 |
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|---|---|---|
systemd (PTS) | bullseye | 247.3-7+deb11u5 | fixed |
bullseye (security) | 247.3-7+deb11u7 | fixed | |
bookworm | 252.39-1~deb12u1 | fixed | |
bookworm (security) | 252.38-1~deb12u1 | fixed | |
trixie | 257.8-1~deb13u1 | fixed | |
forky | 258~rc3-1 | fixed | |
sid | 258~rc4-1 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|---|---|---|---|---|---|
systemd | source | wheezy | 44-11+deb7u5 | DLA-659-1 | ||
systemd | source | jessie | 215-17+deb8u6 | |||
systemd | source | (unstable) | 231-9 | 839607 |
https://github.com/systemd/systemd/issues/4234#issuecomment-250441246
Fixed by: https://github.com/systemd/systemd/pull/4240